Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

81.064exploits catalogados
37.667CVEs con explotación pública
24.695probados en laboratorio
24.695 exploits
Exploit-DBVexDay Proof
Geeklog 1.3.7 - 'Homepage User' HTML Injection
CVE-2003-1347webappsphp14 ene 2003
Multiple cross-site scripting (XSS) vulnerabilities in Geeklog 1.3.7 allow remote attackers to inject arbitrary web scri
23RIESGO
abrir
Exploit-DBVexDay Proof
Opera 6.0/7.0 - opera.PluginContext Native Method Denial of Service
CVE-2003-1397doswindows13 ene 2003
The PluginContext object of Opera 6.05 and 7.0 allows remote attackers to cause a denial of service (crash) via an HTTP
23RIESGO
abrir
Exploit-DBVexDay Proof
PHPPass 2 - 'AccessControl.php' SQL Injection
CVE-2003-1533webappsphp13 ene 2003
SQL injection vulnerability in accesscontrol.php in PhpPass 2 allows remote attackers to execute arbitrary SQL commands
23RIESGO
abrir
Exploit-DBVexDay Proof
Solaris 2.x/7.0/8 - Derived 'login' Remote Buffer Overflow
CVE-2001-0797remotesolaris09 ene 2003
Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary comman
60RIESGO
abrir
Exploit-DBVexDay Proof
TANne 0.6.17 - Session Manager SysLog Format String
CVE-2003-1236remotelinux07 ene 2003
Multiple format string vulnerabilities in the logger function in netzio.c for Tanne 0.6.17 allows remote attackers to ex
28RIESGO
abrir
Exploit-DBVexDay Proof
H-Sphere WebShell 2.4 - Remote Command Execution
CVE-2003-1247remotelinux06 ene 2003
Multiple buffer overflows in H-Sphere WebShell 2.3 allow remote attackers to execute arbitrary code via (1) a long URL c
23RIESGO
abrir
Exploit-DBVexDay Proof
E-theni - Remote File Inclusion Command Execution
CVE-2003-1256webappsphp06 ene 2003
aff_liste_langue.php in E-theni allows remote attackers to execute arbitrary PHP code by modifying the rep_include param
23RIESGO
abrir
Exploit-DBVexDay Proof
AN HTTPD 1.41 e - Cross-Site Scripting
CVE-2003-1271remotemultiple06 ene 2003
Cross-site scripting vulnerability (XSS) in AN HTTP 1.41e allows remote attackers to execute arbitrary web script or HTM
23RIESGO
abrir
Exploit-DBVexDay Proof
H-Sphere WebShell 2.4 - Local Privilege Escalation
CVE-2003-1247locallinux06 ene 2003
Multiple buffer overflows in H-Sphere WebShell 2.3 allow remote attackers to execute arbitrary code via (1) a long URL c
23RIESGO
abrir
Exploit-DBVexDay Proof
OpenTopic 2.3.1 - Private Message HTML Injection
CVE-2003-1278webappsphp06 ene 2003
Cross-site scripting vulnerability (XSS) in OpenTopic 2.3.1 allows remote attackers to execute arbitrary script as other
23RIESGO
abrir
Exploit-DBVexDay Proof
S8Forum 3.0 - Remote Command Execution
CVE-2003-1252webappsphp06 ene 2003
register.php in S8Forum 3.0 allows remote attackers to execute arbitrary PHP commands by creating a user whose name ends
23RIESGO
abrir
Exploit-DBVexDay Proof
EType EServ 2.9x - FTP Remote Denial of Service
CVE-2003-1266doswindows04 ene 2003
The (1) FTP, (2) POP3, (3) SMTP, and (4) NNTP servers in EServer 2.92 through 2.97, and possibly 2.98, allow remote atta
23RIESGO
abrir
Exploit-DBVexDay Proof
EType EServ 2.9x - POP3 Remote Denial of Service
CVE-2003-1266doswindows04 ene 2003
The (1) FTP, (2) POP3, (3) SMTP, and (4) NNTP servers in EServer 2.92 through 2.97, and possibly 2.98, allow remote atta
23RIESGO
abrir
Exploit-DBVexDay Proof
EType EServ 1.9x - NNTP Remote Denial of Service
CVE-2003-1266doswindows04 ene 2003
The (1) FTP, (2) POP3, (3) SMTP, and (4) NNTP servers in EServer 2.92 through 2.97, and possibly 2.98, allow remote atta
23RIESGO
abrir
Exploit-DBVexDay Proof
EType EServ 2.9x - SMTP Remote Denial of Service
CVE-2003-1266doswindows04 ene 2003
The (1) FTP, (2) POP3, (3) SMTP, and (4) NNTP servers in EServer 2.92 through 2.97, and possibly 2.98, allow remote atta
23RIESGO
abrir
Exploit-DBVexDay Proof
iCal 3.7 - Remote Buffer Overflow (PoC)
CVE-2003-1263doswindows03 ene 2003
ICAL.EXE in iCal 3.7 allows remote attackers to cause a denial of service (crash) via a malformed HTTP request, possibly
23RIESGO
abrir
Exploit-DBVexDay Proof
iCal 3.7 - HTTP Request Denial of Service
CVE-2003-1263doswindows03 ene 2003
ICAL.EXE in iCal 3.7 allows remote attackers to cause a denial of service (crash) via a malformed HTTP request, possibly
23RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Pocket Internet Explorer 3.0 - Denial of Service
CVE-2003-1275doswindows03 ene 2003
Pocket Internet Explorer (PIE) 3.0 allows remote attackers to cause a denial of service (crash) via a Javascript functio
28RIESGO
abrir
Exploit-DBVexDay Proof
Microsoft Windows Server 2000 - Lanman Denial of Service (2)
CVE-2002-0597doswindows03 ene 2003
LANMAN service on Microsoft Windows 2000 allows remote attackers to cause a denial of service (CPU/memory exhaustion) vi
35RIESGO
abrir
Exploit-DBVexDay Proof
Sun Solaris 2.5.1/2.6/7.0/8/9 Wall - Spoofed Message Origin
CVE-2003-1071localsolaris03 ene 2003
rpc.walld (wall daemon) for Solaris 2.6 through 9 allows local users to send messages to logged on users that appear to
23RIESGO
abrir
Exploit-DBVexDay Proof
N/X Web Content Management System 2002 Prerelease 1 - 'datasets.php?c_path' Local File Inclusion
CVE-2003-1251webappsphp02 ene 2003
The (1) menu.inc.php, (2) datasets.php and (3) mass_operations.inc.php (mistakenly referred to as mass_opeations.inc.php
23RIESGO
abrir
Exploit-DBVexDay Proof
N/X Web Content Management System 2002 Prerelease 1 - 'menu.inc.php?c_path' Remote File Inclusion
CVE-2003-1251webappsphp02 ene 2003
The (1) menu.inc.php, (2) datasets.php and (3) mass_operations.inc.php (mistakenly referred to as mass_opeations.inc.php
23RIESGO
abrir
Exploit-DBVexDay Proof
Emacs 2.1 - Local Variable Arbitrary Command Execution
CVE-2003-1232locallinux31 dic 2002
Emacs 21.2.1 does not prompt or warn the user before executing Lisp code in the local variables section of a text file,
23RIESGO
abrir
Exploit-DBVexDay Proof
PEEL 1.0b - Remote File Inclusion
CVE-2002-2134webappsphp31 dic 2002
haut.php in PEEL 1.0b allows remote attackers to execute arbitrary PHP code by modifying the dirroot parameter to refere
23RIESGO
abrir
Exploit-DBVexDay Proof
Melange Chat Server 1.10 - Remote Buffer Overflow
CVE-2002-1351remotelinux24 dic 2002
Buffer overflow in Melange Chat System 1.10 allows remote attackers to cause a denial of service (chat server crash) and
23RIESGO
abrir
Exploit-DBVexDay Proof
W-Agora 4.1.6 - 'EditForm.php' Cross-Site Scripting
CVE-2002-2129webappsphp22 dic 2002
Cross-site scripting vulnerability (XSS) in editform.php for w-Agora 4.1.5 allows remote attackers to execute arbitrary
23RIESGO
abrir
Exploit-DBVexDay Proof
CHETCPASSWD 1.12 - Shadow File Disclosure
CVE-2002-2219webappscgi22 dic 2002
chetcpasswd.cgi in Pedro Lineu Orso chetcpasswd before 2.1 allows remote attackers to read the last line of the shadow f
23RIESGO
abrir
Exploit-DBVexDay Proof
RealServer 7-9 - Describe Buffer Overflow (Metasploit)
CVE-2002-1643remotemultiple20 dic 2002
Multiple buffer overflows in RealNetworks Helix Universal Server 9.0 (9.0.2.768) allow remote attackers to execute arbit
60RIESGO
abrir
Exploit-DBVexDay Proof
CUPS 1.1.x - Negative Length HTTP Header
CVE-2002-1368remotelinux19 dic 2002
Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allows remote attackers to cause a denial of service (crash) an
28RIESGO
abrir
Exploit-DBVexDay Proof
Linux Kernel 2.2 - 'mmap()' Local Denial of Service
CVE-2002-1380doslinux17 dic 2002
Linux kernel 2.2.x allows local users to cause a denial of service (crash) by using the mmap() function with a PROT_READ
23RIESGO
abrir
anteriorpágina 559 / 824siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.